1 |
On Thu, 19 Oct 2017 21:08:40 +0200 |
2 |
Michał Górny <mgorny@g.o> wrote: |
3 |
|
4 |
> manifest-hashes = SHA512 SHA3_512 |
5 |
|
6 |
Counterproposal: Just use SHA512. |
7 |
|
8 |
There isn't any evidence that any SHA2-based hash algorithm is going to |
9 |
be broken any time soon. If that changes there will very likely be |
10 |
decades of warning before a break becomes practical. |
11 |
|
12 |
Having just one hash is simpler and using a well supported one like |
13 |
SHA512 may make things easier than using something that's still not |
14 |
very widely supported. |
15 |
|
16 |
-- |
17 |
Hanno Böck |
18 |
https://hboeck.de/ |
19 |
|
20 |
mail/jabber: hanno@××××××.de |
21 |
GPG: FE73757FA60E4E21B937579FA5880072BBB51E42 |